Threat Intelligence Intern - Summer 2026
Overview
Join Rapid7's Threat Intelligence and Detection team as a Summer 2026 intern. You will support our Managed Detection and Response analysts by researching threat actor TTPs, triaging alerts from customer environments, developing new detection rules for InsightIDR, and hunting in telemetry for novel adversary behaviors. Responsibilities include writing Sigma and Suricata rules, enriching IOCs through OSINT pivoting, contributing to the Rapid7 Labs blog, and assisting in quarterly Threat Report production. Qualifications: pursuing a BS/MS in Cybersecurity, Computer Science, Information Systems, or related field; familiarity with MITRE ATT&CK framework, common SIEM query languages (KQL, SPL), and Python scripting; understanding of Windows/Linux forensic artifacts. Prior SOC or CTF experience and Security+ or similar certification are pluses.